CWE-250

Medium likelihood

Execution with Unnecessary Privileges

Parent: CWE-269 - Improper Privilege Management

The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.

341 vulnerabilities with CWE-250
CVE-2024-6913 HIGH
PerkinElmer ProcessPlus <1.11.6507.0 - Privilege Escalation
CVSS 8.8
CVE-2024-20435 HIGH
Cisco AsyncOS - Authenticated Privilege Escalation via CLI Command Injection
CVSS 8.8
CVE-2024-6834 CRITICAL
APIML Spring Cloud Gateway - Privilege Escalation
CVSS 9.0
CVE-2024-21184 HIGH
Oracle Database <19.23 - Privilege Escalation
CVSS 7.2
CVE-2024-35154 HIGH
IBM WebSphere Application Server <9.0 - Authenticated RCE
CVSS 7.2
CVE-2024-32853 MEDIUM
Dell PowerScale OneFS <9.7.0.2 - Privilege Escalation
CVSS 4.4
CVE-2024-3330 CRITICAL
Spotfire Analyst and Server - Remote Code Execution
CVSS 9.9
CVE-2024-31890 HIGH
IBM TCP/IP <7.5 - Privilege Escalation
CVSS 7.8
CVE-2024-3498 HIGH
Printer <version> - Privilege Escalation
CVSS 7.8
CVE-2024-27147 HIGH
Toshiba Printers - Privilege Escalation
CVSS 7.4
CVE-2024-27146 MEDIUM
Toshiba Printers - Privilege Escalation
CVSS 6.7
CVE-2024-27143 CRITICAL
Toshiba Tec e-Studio multi-function peripheral (MFP) - Unauthenticated Remote Code Execution via SNMP Private Community
CVSS 9.8
CVE-2024-0084 HIGH
NVIDIA vGPU < 13.11 - Privilege Escalation via Virtual GPU Manager
CVSS 7.8
CVE-2024-23299 HIGH
macOS < 12.7.4, < 13.6.5, < 14.4 - Sandbox Escape via Privilege Escalation
CVSS 8.6
CVE-2024-35142 HIGH
IBM Security Verify Access Docker <10.0.7 - Privilege Escalation
CVSS 8.4
CVE-2024-34477 HIGH
fogproject < 1.5.10.41 - Privilege Escalation via NFS Share Mount
CVSS 7.8
CVE-2024-5042 MEDIUM
submariner-operator 0.16.0-m0-0.16.4 - Execution with Unnecessary Privileges
CVSS 6.6
CVE-2024-27260 HIGH
IBM AIX <7.2,7.3 - Privilege Escalation
CVSS 8.4
CVE-2024-27110 HIGH
GE HealthCare EchoPAC - Privilege Escalation
CVSS 8.4
CVE-2024-25967 MEDIUM
Dell PowerScale OneFS <9.7.0.1 - Privilege Escalation
CVSS 6.7
CVE-2024-21003 LOW
Oracle Java SE <8u401, Oracle GraalVM EE <21.3.9 - Info Disclosure
CVSS 3.1
CVE-2024-20999 HIGH
Oracle Solaris <11 - Privilege Escalation
CVSS 8.2
CVE-2024-24245 HIGH
Canimaan Software LTD ClamXAV <3.6.1 - Privilege Escalation
CVSS 7.8
CVE-2024-28005 MEDIUM
NEC Aterm Firmware - Authenticated Remote Code Execution
CVSS 4.7
CVE-2024-0073 HIGH
NVIDIA GPU Display Driver for Windows - RCE
CVSS 7.8
Details
Vulnerabilities 341
Exploit Likelihood Medium